Записи Fedora
8 опубликованных записей вендора fedora.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 87,5 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-310 Cryptographic Issues2
- CWE-399 Resource Management Errors2
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-20 Improper Input Validation1
- CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
8 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
42В плане | CVE-2008-3252Эксплойта нет | Stack-based buffer overflow in the read_article function in getarticle.c in newsx 1.6 allows remote attackers to execute arbitrary code via redhat · fedora · CWE-119 | Критическая10,0 | — | 6,7 % | 21 июл. 2008 г. |
35Наблюдать | CVE-2024-2746Эксплойта нет | Incomplete fix for CVE-2024-1929fedora · dnf5daemon-server · CWE-20 | Высокая8,8 | — | 0,2 % | 7 мая 2024 г. |
32Наблюдать | CVE-2008-3283Эксплойта нет | Multiple memory leaks in Red Hat Directory Server 7.1 before SP7, Red Hat Directory Server 8, and Fedora Directory Server 1.1.1 and earlier fedora · directory server · CWE-399 | Высокая7,8 | — | 2,9 % | 29 авг. 2008 г. |
30Наблюдать | CVE-2008-2930Proof of concept | Red Hat Directory Server 7.1 before SP7, Red Hat Directory Server 8, and Fedora Directory Server 1.1.1 allow remote attackers to cause a denfedora · directory server · CWE-399 | Высокая7,1 | — | 6,6 % | 29 авг. 2008 г. |
28Наблюдать | CVE-2015-1848Эксплойта нет | The pcs daemon (pcsd) in PCS 0.9.137 and earlier does not set the secure flag for a cookie in an https session, which makes it easier for refedora · pacemaker configuration system · CWE-310 | Средняя6,8 | — | 2,4 % | 14 мая 2015 г. |
18Наблюдать | CVE-2015-3983Эксплойта нет | The pcs daemon (pcsd) in PCS 0.9.137 and earlier does not include the HTTPOnly flag in a Set-Cookie header, which makes it easier for remotefedora · pacemaker configuration system · CWE-310 | Средняя4,3 | — | 2,1 % | 14 мая 2015 г. |
18Наблюдать | CVE-2008-2929Эксплойта нет | Multiple cross-site scripting (XSS) vulnerabilities in the adminutil library in the Directory Server Administration Express and Directory Sefedora · directory server · CWE-79 | Средняя4,3 | — | 1,7 % | 29 авг. 2008 г. |
4Наблюдать | CVE-2012-3500Эксплойта нет | scripts/annotate-output.sh in devscripts before 2.12.2, as used in rpmdevtools before 8.3, allows local users to modify arbitrary files via devscripts devel team · devscripts · CWE-362 | Низкая1,2 | — | 0,3 % | 30 сент. 2012 г. |
- CVE-2008-325242В плане
Stack-based buffer overflow in the read_article function in getarticle.c in newsx 1.6 allows remote attackers to execute arbitrary code via
КритическаяCVSS 10,0Эксплойта нетEPSS 7 %redhat · fedora21 июл. 2008 г.
- CVE-2024-274635Наблюдать
Incomplete fix for CVE-2024-1929
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %fedora · dnf5daemon-server7 мая 2024 г.
- CVE-2008-328332Наблюдать
Multiple memory leaks in Red Hat Directory Server 7.1 before SP7, Red Hat Directory Server 8, and Fedora Directory Server 1.1.1 and earlier
ВысокаяCVSS 7,8Эксплойта нетEPSS 3 %fedora · directory server29 авг. 2008 г.
- CVE-2008-293030Наблюдать
Red Hat Directory Server 7.1 before SP7, Red Hat Directory Server 8, and Fedora Directory Server 1.1.1 allow remote attackers to cause a den
ВысокаяCVSS 7,1Proof of conceptEPSS 7 %fedora · directory server29 авг. 2008 г.
- CVE-2015-184828Наблюдать
The pcs daemon (pcsd) in PCS 0.9.137 and earlier does not set the secure flag for a cookie in an https session, which makes it easier for re
СредняяCVSS 6,8Эксплойта нетEPSS 2 %fedora · pacemaker configuration system14 мая 2015 г.
- CVE-2015-398318Наблюдать
The pcs daemon (pcsd) in PCS 0.9.137 and earlier does not include the HTTPOnly flag in a Set-Cookie header, which makes it easier for remote
СредняяCVSS 4,3Эксплойта нетEPSS 2 %fedora · pacemaker configuration system14 мая 2015 г.
- CVE-2008-292918Наблюдать
Multiple cross-site scripting (XSS) vulnerabilities in the adminutil library in the Directory Server Administration Express and Directory Se
СредняяCVSS 4,3Эксплойта нетEPSS 2 %fedora · directory server29 авг. 2008 г.
- CVE-2012-35004Наблюдать
scripts/annotate-output.sh in devscripts before 2.12.2, as used in rpmdevtools before 8.3, allows local users to modify arbitrary files via
НизкаяCVSS 1,2Эксплойта нетEPSS 0 %devscripts devel team · devscripts30 сент. 2012 г.